Fortinet FortiWeb
cpe:2.3:a:fortinet:fortiweb:*:*:*:*:*:*:*
- >= 6.3.17, <= 7.6.1
A SQL injection vulnerability has been identified in Fortinet FortiWeb versions 6.3.17 through 7.6.1. This vulnerability arises from improper neutralization of special elements used in SQL commands, allowing attackers to execute crafted SQL queries that could lead to unauthorized information disclosure.
Exploitation of this vulnerability could result in unauthorized access to sensitive information through crafted SQL queries.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.